CVE-2015-3227: Possible Denial of Service
(updated )
Specially crafted XML documents can cause applications to raise a SystemStackError
and potentially cause a denial of service attack. This nonly impacts applications using REXML or JDOM as their XML processor. Other XML processors that Rails supports are not impacted.
References
Detect and mitigate CVE-2015-3227 with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →